CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
40198 | CVE-2009-2763 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20090813) | None (candidate not yet proposed) | View | |
40454 | CVE-2009-3019 | Candidate | Microsoft Internet Explorer 6 on Windows XP SP2 and SP3, and Internet Explorer 7 on Vista, allows remote attackers to cause a denial of service (application crash) via JavaScript code that calls createElement to create an instance of the LI element, and then calls setAttribute to set the value attribute. | Assigned (20090831) | None (candidate not yet proposed) | View | |
40710 | CVE-2009-3275 | Candidate | Blocks/Common/Src/Configuration/Manageability/Adm/AdmContentBuilder.cs in Microsoft patterns & practices Enterprise Library (aka EntLib) allows context-dependent attackers to cause a denial of service (CPU consumption) via an input string composed of many (backslash) characters followed by a " (double quote), related to a certain regular expression, aka a "ReDoS" vulnerability. | Assigned (20090921) | None (candidate not yet proposed) | View | |
40966 | CVE-2009-3531 | Candidate | SQL injection vulnerability in vnews.php in Universe CMS 1.0.6 allows remote attackers to execute arbitrary SQL commands via the id parameter. | Assigned (20091002) | None (candidate not yet proposed) | View | |
41222 | CVE-2009-3787 | Candidate | files.php in Vivvo CMS 4.1.5.1 allows remote attackers to conduct directory traversal attacks and read arbitrary files via the file parameter with "logs/" in between two . (dot) characters, which is filtered into a "../" sequence. | Assigned (20091026) | None (candidate not yet proposed) | View |
Page 541 of 20943, showing 5 records out of 104715 total, starting on record 2701, ending on 2705